Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Debian 8 DSA-3347-1 Critical: Upgrade pdns To Prevent DoS Attacks

debian
Calendar Grey September 2, 2015
Debian Logo
Debian DSA-3348-1 tackles the pDNS Denial of Service vulnerability. An upgrade is advised to prevent system instabilities.
Pyry Hakulinen and Ashish Shakla at Automattic discovered that pdns, an authoritative DNS server, was incorrectly processing some DNS packets; this would enable a remote attacker t...

Summary

Pyry Hakulinen and Ashish Shakla at Automattic discovered that pdns,
an authoritative DNS server, was incorrectly processing some DNS
packets; this would enable a remote attacker to trigger a DoS by
sending specially crafted packets causing the server to crash.

For the stable distribution (jessie), this problem has been fixed in
version 3.4.1-4+deb8u3.

For the testing distribution (stretch) and unstable distribution
(sid), this problem has been fixed in version 3.4.6-1.

We recommend that you upgrade your pdns packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: pdns
CVE ID: CVE-2015-5230

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here